Environment

Resolution

A. Locate “certX” (optional)

In most cases, please reach out to your operations team for the necessary “certX” files.

If configuring HA and you need to download the SSL server certificate (CloudBees Jenkins Operations Center, haproxy virtualmachine, etc), use a tool such as:

openssl

> openssl s_client -connect <SERVER_HOSTNAME>:443

keytool

> keytool -printcert -rfc -sslServer <SERVER_HOSTNAME>

gnutls-cli

> gnutls-cli --print-cert --insecure <SERVER_HOSTNAME>

Note: Embedded in the response is the certificate identifiable by the fragment starting with
-----BEGIN CERTIFICATE----- and ending with
-----END CERTIFICATE-----. Store the certificate in a file “path/to/.pem”, including
-----BEGIN CERTIFICATE----- and
-----END CERTIFICATE-----.